Skip to content

III - Administrative Public

Rules and Groups employed by this XCCDF Profile

  • SRG-OS-000480

    <GroupDescription></GroupDescription>
    Group
  • The system must prevent the use of dictionary words for passwords.

    &lt;VulnDiscussion&gt;The use of common words in passwords simplifies password-cracking attacks.&lt;/VulnDiscussion&gt;&lt;FalsePositives&gt;&lt;/F...
    Rule Medium Severity
  • SRG-OS-000109

    <GroupDescription></GroupDescription>
    Group
  • The operating system must require individuals to be authenticated with an individual authenticator prior to using a group authenticator.

    &lt;VulnDiscussion&gt;Allowing any user to elevate their privileges can allow them excessive control of the system tools.&lt;/VulnDiscussion&gt;&lt...
    Rule Medium Severity
  • SRG-OS-000480

    <GroupDescription></GroupDescription>
    Group
  • The default umask for system and users must be 077.

    &lt;VulnDiscussion&gt;Setting a very secure default value for umask ensures that users make a conscious choice about their file permissions.&lt;/Vu...
    Rule Medium Severity
  • SRG-OS-000480

    <GroupDescription></GroupDescription>
    Group
  • The default umask for FTP users must be 077.

    &lt;VulnDiscussion&gt;Setting a very secure default value for umask ensures that users make a conscious choice about their file permissions.&lt;/Vu...
    Rule Low Severity
  • SRG-OS-000480

    <GroupDescription></GroupDescription>
    Group
  • The value mesg n must be configured as the default setting for all users.

    &lt;VulnDiscussion&gt;The "mesg n" command blocks attempts to use the "write" or "talk" commands to contact users at their terminals, but has the s...
    Rule Low Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules